PT-2025-48380 · Tryton · Tryton

Published

2025-11-30

·

Updated

2025-11-30

·

CVE-2025-66423

CVSS v3.1
7.1
VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Tryton trytond 6.0 before 7.6.11 does not enforce access rights for the route of the HTML editor. This is fixed in 7.6.11, 7.4.21, 7.0.40, and 6.0.70.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-66423

Affected Products

Tryton